Month: February 2026
CVE-2024-27316 Apache HTTP Server: HTTP/2 DoS by memory exhaustion on endless continuation frames
CVE-2025-37857 scsi: st: Fix array overflow in st_setup()
Information published. Continue reading CVE-2025-37857 scsi: st: Fix array overflow in st_setup()
CVE-2022-25881 This affects versions of the package http-cache-semantics before 4.1.1. The issue can be exploited via malicious request header values sent to a server when that server reads the cache policy from the request using this library.
CVE-2024-49930 wifi: ath11k: fix array out-of-bound access in SoC stats
Information published. Continue reading CVE-2024-49930 wifi: ath11k: fix array out-of-bound access in SoC stats
CVE-2024-39495 greybus: Fix use-after-free bug in gb_interface_release due to race condition.
CVE-2025-37851 fbdev: omapfb: Add ‘plane’ value check
Information published. Continue reading CVE-2025-37851 fbdev: omapfb: Add ‘plane’ value check
CVE-2024-45009 mptcp: pm: only decrement add_addr_accepted for MPJ req
Information published. Continue reading CVE-2024-45009 mptcp: pm: only decrement add_addr_accepted for MPJ req
